CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3020 | CVE-2001-0199 | Candidate | Directory traversal vulnerability in SEDUM HTTP Server 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack in the HTTP GET request. | Modified (20050509) | MODIFY(1) Frech | NOOP(2) Lawler, Ziese | Frech> XF:sedum-directory-traversal(6063) | View |
3019 | CVE-2001-0198 | Candidate | Buffer overflow in QuickTime Player plugin 4.1.2 (Japanese) allows remote attackers to execute arbitrary commands via a long HREF parameter in an EMBED tag. | Modified (20130403) | ACCEPT(1) Frech | NOOP(3) Christey, Lawler, Ziese | Christey> Fix typo: "paramater" | Christey> fix typo: "paramatar" | View |
3018 | CVE-2001-0197 | Entry | Format string vulnerability in print_client in icecast 1.3.8beta2 and earlier allows remote attackers to execute arbitrary commands. | View | |||
3017 | CVE-2001-0196 | Entry | inetd ident server in FreeBSD 4.x and earlier does not properly set group permissions, which allows remote attackers to read the first 16 bytes of files that are accessible by the wheel group. | View | |||
3016 | CVE-2001-0195 | Entry | sash before 3.4-4 in Debian GNU/Linux does not properly clone /etc/shadow, which makes it world-readable and could allow local users to gain privileges via password cracking. | View |
Page 20340 of 20943, showing 5 records out of 104715 total, starting on record 101696, ending on 101700